VYPR

Rhythmbox

by GNOME Foundation

CVEs (2)

  • CVE-2008-7185Sep 8, 2009
    risk 0.03cvss epss 0.03

    GNOME Rhythmbox 0.11.5 allows remote attackers to cause a denial of service (segmentation fault and crash) via a playlist (.pls) file with a long Title field, possibly related to the g_hash_table_lookup function in b-playlist-manager.c.

  • CVE-2012-3355Jul 17, 2012
    risk 0.00cvss epss 0.01

    (1) AlbumTab.py, (2) ArtistTab.py, (3) LinksTab.py, and (4) LyricsTab.py in the Context module in GNOME Rhythmbox 0.13.3 and earlier allows local users to execute arbitrary code via a symlink attack on a temporary HTML template file in the /tmp/context directory.